Integer signedness error in the mobility_opt_print function in the IPv6 mobility printer in tcpdump before 4.7.2 allows remote attackers to cause a denial of service (out-of-bounds read and crash) or possibly execute arbitrary code via a negative length value.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Tcpdump | Tcpdump | * | 4.7.0 (including) |
Red Hat Enterprise Linux 7 | RedHat | tcpdump-14:4.9.0-5.el7 | * |
Tcpdump | Ubuntu | lucid | * |
Tcpdump | Ubuntu | precise | * |
Tcpdump | Ubuntu | trusty | * |
Tcpdump | Ubuntu | upstream | * |
Tcpdump | Ubuntu | utopic | * |